User Tools

Site Tools


pfsense:pfblockerng:install_pfblockerng:setup_ip_blocking

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
pfsense:pfblockerng:install_pfblockerng:setup_ip_blocking [2021/01/28 10:43] – [Setup Custom IP Lists] peterpfsense:pfblockerng:install_pfblockerng:setup_ip_blocking [2021/01/28 14:42] (current) peter
Line 5: Line 5:
 Navigate to **Firewall -> pfBlockerNG -> IP**. Navigate to **Firewall -> pfBlockerNG -> IP**.
  
-Within the **IP Configuration** section:+In **IP Configuration**:
  
   * De-Duplication: **Checked**   * De-Duplication: **Checked**
Line 24: Line 24:
 Navigate to **Firewall -> pfBlockerNG -> IP**.  Navigate to **Firewall -> pfBlockerNG -> IP**. 
  
-Within the **MaxMind GeoIP configuration** section:+In **MaxMind GeoIP configuration**:
  
   * MaxMind License Key: **Enter the MaxMind License Key**.  If you don't have a key, register for one on the [[https://www.maxmind.com/|Maxmind Site]].   * MaxMind License Key: **Enter the MaxMind License Key**.  If you don't have a key, register for one on the [[https://www.maxmind.com/|Maxmind Site]].
Line 36: Line 36:
 ===== IP Interface/Rules Configuration ===== ===== IP Interface/Rules Configuration =====
  
 +Navigate to **Firewall -> pfBlockerNG -> IP**. 
  
-Within the **IP Interface/Rules Configuration** section:+In **IP Interface/Rules Configuration**:
  
   * Inbound Firewall Rules:  **WAN** and **Block**.   * Inbound Firewall Rules:  **WAN** and **Block**.
Line 67: Line 68:
 ==== IPv4 ==== ==== IPv4 ====
  
 +Navigate to **Firewall -> pfBlockerNG -> IP -> IPv4**.
  
-See IP Lists+  * Click the **Add** button. 
 +  * Give it a **Name** and **Description**.
  
-Navigate to **Firewall -> pfBlockerNG -> IP -> IPv4**.+Add in as many **IP Source Definitions** as needed. 
 + 
 +<WRAP info> 
 +Set: 
 +  
 +  * Type:  **Auto**. 
 +  * State: **On**. 
 + 
 +See [[PFSense:pfBlockerNG:pfBlockerNG IP Lists - IPv4|pfBlockerNG IP Lists - IPv4]] 
 +</WRAP> 
 + 
 +{{:pfsense:pfblockerng:install_pfblockerng:pfsense_-_firewall_-_pfblockerng_-_ip_-_ipv4_-_ipv4.png?800|}} 
 + 
 +---- 
 + 
 +In **Settings**: 
 + 
 +  * State: **ON**. 
 +  * Action: **Deny Both**. 
 +  * Update Frequency: **Once per day**. 
 + 
 +{{:pfsense:pfblockerng:install_pfblockerng:pfsense_-_firewall_-_pfblockerng_-_ip_-_ipv4_-_ipv4_-_settings.png?800|}} 
 + 
 + 
 +---- 
 + 
 +==== IPv6 ==== 
 + 
 +Navigate to **Firewall -> pfBlockerNG -> IP -> IPv6**.
  
   * Click the **Add** button.   * Click the **Add** button.
Line 77: Line 108:
 Add in as many **IP Source Definitions** as needed. Add in as many **IP Source Definitions** as needed.
  
 +<WRAP info>
 Set: Set:
 + 
 +  * Type:  **Auto**.
 +  * State: **On**.
 +
 +See [[PFSense:pfBlockerNG:pfBlockerNG IP Lists - IPv6|pfBlockerNG IP Lists - IPv6]]
 +</WRAP>
 +
 +{{:pfsense:pfblockerng:install_pfblockerng:pfsense_-_firewall_-_pfblockerng_-_ip_-_ipv6_-_ipv6.png?800|}}
 +
 +----
 +
 +In **Settings**:
  
   * State: **ON**.   * State: **ON**.
Line 83: Line 127:
   * Update Frequency: **Once per day**.   * Update Frequency: **Once per day**.
  
-For Example+---- 
 + 
 +==== GeoIP ==== 
 + 
 +Navigate to **Firewall -> pfBlockerNG -> IP -> GeoIP**. 
 + 
 +<WRAP info> 
 +**NOTE:**  GeoIP is not used.   
 + 
 +All Actions are **Disabled**. 
 + 
 +Reason is that many services, such as AWS, utilize services in other countries, so if a country is blocked this may result in impacting legitimate sites, 
 + 
 +</WRAP> 
 + 
 +{{:pfsense:pfblockerng:install_pfblockerng:pfsense_-_firewall_-_pfblockerng_-_ip_-_geoip.png?800|}} 
 + 
 +----
  
-{{:pfsense:pfblockerng:pfsense_pfblockerng_ip_ipv4_feed_pri1.png?800|}}+==== Reputation ====
  
 +{{:pfsense:pfblockerng:install_pfblockerng:pfsense_-_firewall_-_pfblockerng_-_ip_-_reputation.png?800|}}
  
 ---- ----
pfsense/pfblockerng/install_pfblockerng/setup_ip_blocking.1611830595.txt.gz · Last modified: 2021/01/28 10:43 by peter

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki